Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-02-2014 01 Ran by agusia (administrator) on AGUSIA-HP on 14-02-2014 21:00:40 Running from C:\Users\agusia\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: Polish Internet Explorer Version 9 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (HP) C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe (Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe (IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe (EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe () C:\Program Files (x86)\Mobogenie\MgAssist.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Service.exe () C:\Program Files (x86)\Mobogenie\DaemonProcess.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-Network.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-BlockDevice.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-SharedFolder.exe (Microsoft Corporation) c:\Program Files\Microsoft Security Client\NisSrv.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe () C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar1.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar2.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.141\SSScheduler.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Agent.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Program Files (x86)\Internet Explorer\IELowutil.exe (Alexander Roshal) C:\Program Files (x86)\WinRAR\WinRAR.exe (HP) C:\Program Files (x86)\HP SimplePass 2011\TouchControl.exe (HP) C:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Visual Studio 10.0\Common7\IDE\VBExpress.exe (Microsoft Corporation) C:\Users\agusia\Documents\Visual Studio 2010\Projects\WindowsApplication15\bin\Debug\WindowsApplication15.vshost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2799912 2011-06-10] (Synaptics Incorporated) HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [1424896 2011-09-08] (IDT, Inc.) HKLM\...\Run: [SetDefault] - C:\Program Files\Hewlett-Packard\HP LaunchBox\SetDefault.exe [43320 2011-09-30] (Hewlett-Packard Development Company, L.P.) HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [1281512 2013-01-27] (Microsoft Corporation) HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [472984 2013-09-25] (Adobe Systems Incorporated) HKLM-x32\...\Run: [HPQuickWebProxy] - C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [169528 2011-10-08] (Hewlett-Packard Company) HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [574008 2011-07-11] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [946352 2012-12-03] (Adobe Systems Incorporated) HKLM-x32\...\Run: [HPOSD] - C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [Easybits Recovery] - C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [61112 2011-09-15] (EasyBits Software AS) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [Adobe Creative Cloud] - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2237328 2013-11-05] (Adobe Systems Incorporated) HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.) HKLM-x32\...\Run: [mobilegeni daemon] - C:\Program Files (x86)\Mobogenie\DaemonProcess.exe [775872 2014-01-27] () HKLM-x32\...\Run: [fst_pl_19] - [X] HKLM-x32\...\Run: [BlueStacks Agent] - C:\Program Files (x86)\BlueStacks\HD-Agent.exe [811792 2014-01-20] (BlueStack Systems, Inc.) HKLM-x32\...\RunOnce: [upfst_pl_31.exe] - C:\Users\agusia\AppData\Local\fst_pl_31\upfst_pl_31.exe -runonce [3153904 2014-01-02] () Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1 HKU\S-1-5-21-2927037778-1233708203-2928765012-1000\...\Run: [Facebook Update] - C:\Users\agusia\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-01-01] (Facebook Inc.) HKU\S-1-5-21-2927037778-1233708203-2928765012-1000\...\Run: [LiveSupport] - "C:\Program Files (x86)\LiveSupport\LiveSupport.exe" /noshow /log HKU\S-1-5-21-2927037778-1233708203-2928765012-1000\...\Run: [SpeedUpMyComputer] - C:\Program Files (x86)\SmartTweak\SpeedUpMyComputer\SpeedUpMyComputer.exe [2054776 2013-07-22] () HKU\S-1-5-21-2927037778-1233708203-2928765012-1000\...\Run: [uTorrent] - C:\Users\agusia\AppData\Roaming\uTorrent\uTorrent.exe [1307736 2014-01-20] (BitTorrent Inc.) HKU\S-1-5-21-2927037778-1233708203-2928765012-1000\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd) HKU\S-1-5-21-2927037778-1233708203-2928765012-1000\...\Run: [NextLive] - C:\Windows\SysWOW64\rundll32.exe "C:\Users\agusia\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l HKU\S-1-5-21-2927037778-1233708203-2928765012-1000\...\Policies\system: [DisableLockWorkstation] 0 HKU\S-1-5-21-2927037778-1233708203-2928765012-1000\...\Policies\system: [DisableChangePassword] 0 HKU\S-1-5-21-2927037778-1233708203-2928765012-1000\...\MountPoints2: {f4a19b42-81a7-11e3-a81f-ec9a743f342e} - G:\setup.exe AppInit_DLLs: C:\PROGRA~2\OPTIMI~1\OPTPRO~2.DLL => C:\Program Files (x86)\Optimizer Pro\OptProCrash_x64.dll [4455752 2014-01-17] () AppInit_DLLs-x32: c:\progra~2\optimi~1\optpro~1.dll => C:\Program Files (x86)\Optimizer Pro\OptProCrash.dll [4058952 2013-10-29] () GroupPolicy: Group Policy on Chrome detected <======= ATTENTION ==================== Internet (Whitelisted) ==================== ProxyServer: 199.191.120.205:46760 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.qone8.com/?type=hp&ts=1382720512&from=cor&uid=ST9500423AS_6WR0H5QA HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.qone8.com/?type=hp&ts=1382720512&from=cor&uid=ST9500423AS_6WR0H5QA HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = http://search.babylon.com/?babsrc=HP_ss_din2g&mntrId=2C4DC0188505195B&affID=119357&tt=250613_gr5&tsp=4927 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.qone8.com/?type=hp&ts=1382720512&from=cor&uid=ST9500423AS_6WR0H5QA HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.qone8.com/?type=hp&ts=1382720512&from=cor&uid=ST9500423AS_6WR0H5QA HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.qone8.com/?type=hp&ts=1382720512&from=cor&uid=ST9500423AS_6WR0H5QA HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://start.qone8.com/?type=hp&ts=1382720512&from=cor&uid=ST9500423AS_6WR0H5QA StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe http://start.qone8.com/?type=sc&ts=1382720512&from=cor&uid=ST9500423AS_6WR0H5QA SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://start.qone8.com/web/?type=ds&ts=1382720514&from=cor&uid=ST9500423AS_6WR0H5QA&q={searchTerms} SearchScopes: HKLM - {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://eu.ask.com/web?q={searchterms}&l=dis&o=HPNTDF SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://start.qone8.com/web/?type=ds&ts=1382720514&from=cor&uid=ST9500423AS_6WR0H5QA&q={searchTerms} SearchScopes: HKLM - {ACE05FB9-18E8-48AC-A0EC-2D474C167A90} URL = http://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = http://pl.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF SearchScopes: HKLM - {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = http://pl.wikipedia.org/wiki/Special:Search?search={searchTerms} SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://start.qone8.com/web/?type=ds&ts=1382720514&from=cor&uid=ST9500423AS_6WR0H5QA&q={searchTerms} SearchScopes: HKLM-x32 - {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://eu.ask.com/web?q={searchterms}&l=dis&o=HPNTDF SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://start.qone8.com/web/?type=ds&ts=1382720514&from=cor&uid=ST9500423AS_6WR0H5QA&q={searchTerms} SearchScopes: HKLM-x32 - {ACE05FB9-18E8-48AC-A0EC-2D474C167A90} URL = http://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = http://pl.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF SearchScopes: HKLM-x32 - {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = http://pl.wikipedia.org/wiki/Special:Search?search={searchTerms} SearchScopes: HKCU - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://start.qone8.com/web/?type=ds&ts=1382720514&from=cor&uid=ST9500423AS_6WR0H5QA&q={searchTerms} SearchScopes: HKCU - bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=2C4DC0188505195B&affID=119357&tt=250613_gr5&tsp=4927 SearchScopes: HKCU - {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://eu.ask.com/web?q={searchterms}&l=dis&o=HPNTDF SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://start.qone8.com/web/?type=ds&ts=1382720514&from=cor&uid=ST9500423AS_6WR0H5QA&q={searchTerms} SearchScopes: HKCU - {8145C2D8-3F1A-4862-A98B-66AB3AD0EA24} URL = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=100000027&src=kw&q={searchTerms}&locale=en_US&apn_ptnrs=^U3&apn_dtid=^OSJ000^YY^PL&apn_uid=3DB1BD04-C633-423F-96C1-3B0B87224CED&apn_sauid=5BFBFFAC-2B5D-4C66-9BA1-E3BE22E31664 SearchScopes: HKCU - {ACE05FB9-18E8-48AC-A0EC-2D474C167A90} URL = http://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKCU - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = http://pl.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF SearchScopes: HKCU - {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = http://pl.wikipedia.org/wiki/Special:Search?search={searchTerms} BHO: TrueSuite Website Log On - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2011\x64\IEBHO.dll (HP) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.141\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: TrueSuite Website Log On - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll (HP) BHO-x32: Pomocnik logowania za pomocą identyfikatora Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files (x86)\Delta\delta\1.8.21.5\bh\delta.dll (Delta-search.com) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Show-Password - {f1de0f63-f84e-45b5-932e-5a831bc0ef88} - C:\Program Files (x86)\Show-Password\150.dll () Toolbar: HKLM-x32 - Delta Toolbar - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files (x86)\Delta\delta\1.8.21.5\deltaTlbr.dll (Delta-search.com) Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File ShellExecuteHooks-x32: EasyBits ShellExecute Hook - {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWOW64\ezUPBHook.dll [52920 2011-10-21] (EasyBits Software Corp.) Tcpip\Parameters: [DhcpNameServer] 168.95.1.1 FireFox: ======== FF ProfilePath: C:\Users\agusia\AppData\Roaming\Mozilla\Firefox\Profiles\8wqdj0y0.default FF user.js: detected! => C:\Users\agusia\AppData\Roaming\Mozilla\Firefox\Profiles\8wqdj0y0.default\user.js FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll No File FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.141\npMcAfeeMss.dll (McAfee, Inc.) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems) FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\agusia\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\agusia\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Extension: iMacros for Firefox - C:\Users\agusia\AppData\Roaming\Mozilla\Firefox\Profiles\8wqdj0y0.default\Extensions\{81BF1D23-5F17-408D-AC6B-BD6DF7CAF670} [2013-12-07] FF Extension: TrueSuite Website Logon - C:\Program Files (x86)\Mozilla Firefox\extensions\websitelogon@truesuite.com [2014-02-08] FF HKCU\...\Firefox\Extensions: [{2ca93104-6168-4133-979c-8707690b5515}] - C:\Program Files (x86)\Show-Password\150.xpi FF Extension: Show-Password - C:\Program Files (x86)\Show-Password\150.xpi [2014-01-17] Chrome: ======= CHR HomePage: hxxp://mysearch.avg.com/?cid={793D217C-F454-49F6-8494-EA81DEA07253}&mid=a766980ef71147d0aac2a113f034d415-e37a1320561a2da1ae077a7def2cf969e71cc59b&lang=pl/finishurl=hxxp://toolbar.avg.com/p-install?lang=pl&ds=ht011&pr=sa&d=2013-09-23 11:06:18&v=15.4.0.5&pid=safeguard&sg=0&sap=hp CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll No File CHR Plugin: (Java(TM) Platform SE 7 U21) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Windows Live™ Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Facebook Video Calling Plugin) - C:\Users\agusia\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) CHR Plugin: (Shockwave for Director) - C:\Windows\system32\Adobe\Director\np32dsw.dll No File CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) CHR Extension: (Dokumenty Google) - C:\Users\agusia\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-06-02] CHR Extension: (Dysk Google) - C:\Users\agusia\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-06-02] CHR Extension: (Website Logon) - C:\Users\agusia\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfmogjcijkfeahcajecmmegieipfbdcc [2013-06-02] CHR Extension: (YouTube) - C:\Users\agusia\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-06-02] CHR Extension: (Extended Protection) - C:\Users\agusia\AppData\Local\Google\Chrome\User Data\Default\Extensions\cekcjpgehmohobmdiikfnopibipmgnml [2013-10-25] CHR Extension: (Szukaj w Google) - C:\Users\agusia\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-06-02] CHR Extension: (Delta Toolbar) - C:\Users\agusia\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde [2013-06-28] CHR Extension: (AdBlock) - C:\Users\agusia\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-01-19] CHR Extension: (Show-Password) - C:\Users\agusia\AppData\Local\Google\Chrome\User Data\Default\Extensions\logekkkdbdidmmcgkonmmonclldogceg [2014-01-17] CHR Extension: (Google Wallet) - C:\Users\agusia\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-28] CHR Extension: (Gmail) - C:\Users\agusia\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-06-02] CHR HKLM-x32\...\Chrome\Extension: [bfmogjcijkfeahcajecmmegieipfbdcc] - C:\Program Files (x86)\HP SimplePass 2011\tschrome.crx [2011-08-17] CHR HKLM-x32\...\Chrome\Extension: [cekcjpgehmohobmdiikfnopibipmgnml] - C:\Users\agusia\AppData\Local\Google\Chrome\User Data\Default\Extensions\ [2011-08-17] CHR HKLM-x32\...\Chrome\Extension: [eooncjejnppfjjklapaamhcdmjbilmde] - C:\Users\agusia\AppData\Roaming\BabSolution\CR\Delta.crx [2013-06-28] CHR HKLM-x32\...\Chrome\Extension: [ifohbjbgfchkkfhphahclmkpgejiplfo] - C:\Users\agusia\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtab.crx [2013-10-25] CHR HKLM-x32\...\Chrome\Extension: [logekkkdbdidmmcgkonmmonclldogceg] - C:\Program Files (x86)\Show-Password\150.crx [2014-01-17] ==================== Services (Whitelisted) ================= R2 70e6ca8c; C:\Program Files (x86)\Optimizer Pro\OptProCrashSvc.dll [192152 2014-01-17] () R2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [402192 2014-01-20] (BlueStack Systems, Inc.) R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [385808 2014-01-20] (BlueStack Systems, Inc.) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe [289256 2014-01-16] (McAfee, Inc.) R2 MgAssistService; C:\Program Files (x86)\Mobogenie\MgAssist.exe [63168 2014-01-27] () R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22056 2013-01-27] (Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [379360 2013-01-27] (Microsoft Corporation) S2 HP Support Assistant Service; "C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe" [X] ==================== Drivers (Whitelisted) ==================== R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [115472 2014-01-20] (BlueStack Systems) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-01-20] (Disc Soft Ltd) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [230320 2013-01-20] (Microsoft Corporation) R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [130008 2013-01-20] (Microsoft Corporation) S3 sscdserd; C:\Windows\System32\DRIVERS\sscdserd.sys [158024 2013-05-02] (MCCI Corporation) S3 clwvd; system32\DRIVERS\clwvd.sys [X] S1 riauhxhp; \??\C:\Windows\system32\drivers\riauhxhp.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-14 21:00 - 2014-02-14 21:01 - 00028025 _____ () C:\Users\agusia\Downloads\FRST.txt 2014-02-14 21:00 - 2014-02-14 21:00 - 00000000 ____D () C:\FRST 2014-02-14 20:59 - 2014-02-14 21:00 - 02152960 _____ (Farbar) C:\Users\agusia\Downloads\FRST64.exe 2014-02-14 20:32 - 2014-02-14 20:32 - 00602112 _____ (OldTimer Tools) C:\Users\agusia\Downloads\OTL.exe 2014-02-14 19:48 - 2014-02-14 19:48 - 00403233 _____ () C:\Users\agusia\Desktop\Dungelot 2 Hack.zip 2014-02-14 17:56 - 2014-02-14 17:56 - 00001219 _____ () C:\Users\agusia\Desktop\PIT pro 2013.lnk 2014-02-14 17:56 - 2014-02-14 17:56 - 00000000 ____D () C:\Program Files (x86)\Podatnik.info 2014-02-14 17:52 - 2014-02-14 17:56 - 18302464 _____ (Podatnik.info Sp. z o.o. ) C:\Users\agusia\Downloads\Instaluj_program_PIT_PRO_2013 (2).exe 2014-02-14 17:51 - 2014-02-14 17:52 - 18302416 _____ (Podatnik.info Sp. z o.o. ) C:\Users\agusia\Downloads\Instaluj_program_PIT_PRO_2013 (1).exe 2014-02-14 15:17 - 2014-02-14 15:19 - 00000000 ____D () C:\Program Files (x86)\BacklinkBeast 2014-02-14 15:17 - 2014-02-14 15:17 - 00001969 _____ () C:\Users\Public\Desktop\BacklinkBeast.lnk 2014-02-14 15:16 - 2014-02-14 15:16 - 13813716 _____ () C:\Users\agusia\Downloads\BBeast.rar 2014-02-14 13:58 - 2014-02-14 13:58 - 00403237 _____ () C:\Users\agusia\Desktop\Castle Clash Hack.zip 2014-02-14 09:00 - 2014-02-14 09:00 - 00403243 _____ () C:\Users\agusia\Desktop\Deadman's Cross Hack.zip 2014-02-13 21:54 - 2014-02-13 21:55 - 00403241 _____ () C:\Users\agusia\Desktop\Clear Vision 3 Hack.zip 2014-02-13 14:47 - 2014-02-13 14:47 - 00001929 _____ () C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk 2014-02-13 14:46 - 2014-02-13 14:46 - 00000000 ____D () C:\Program Files\McAfee Security Scan 2014-02-12 11:43 - 2014-02-13 22:11 - 00064754 _____ () C:\Users\agusia\Desktop\screen568x568.jpeg 2014-02-12 09:28 - 2014-02-14 18:38 - 00000286 _____ () C:\Windows\Tasks\bench-Updater removing.job 2014-02-12 09:28 - 2014-02-12 09:28 - 00003226 _____ () C:\Windows\System32\Tasks\bench-Updater removing 2014-02-12 08:24 - 2014-02-12 08:24 - 00141776 _____ () C:\Users\agusia\Downloads\Royal Story Hack Tool v9.1.rar 2014-02-12 07:41 - 2014-02-12 16:58 - 00403225 _____ () C:\Users\agusia\Desktop\Zombie Commando 2014 Hack.zip 2014-02-11 16:20 - 2014-02-11 16:20 - 00004761 _____ () C:\Users\agusia\AppData\Local\recently-used.xbel 2014-02-11 16:07 - 2014-02-11 16:08 - 00000000 ____D () C:\Program Files\GIMP 2 2014-02-11 16:05 - 2014-02-11 16:05 - 90396104 _____ (The GIMP Team ) C:\Users\agusia\Downloads\gimp-2.8.10-setup(dobreprogramy.pl).exe 2014-02-11 16:03 - 2014-02-11 16:03 - 00666648 _____ () C:\Users\agusia\Downloads\GIMP(13219).exe 2014-02-11 16:01 - 2014-02-14 17:28 - 00000346 _____ () C:\Windows\Tasks\bench-sys.job 2014-02-11 16:01 - 2014-02-12 07:36 - 00000266 __RSH () C:\ProgramData\ntuser.pol 2014-02-11 16:01 - 2014-02-12 07:36 - 00000000 ____D () C:\Program Files (x86)\Bench 2014-02-11 16:01 - 2014-02-11 16:01 - 00003242 _____ () C:\Windows\System32\Tasks\bench-sys 2014-02-11 16:01 - 2014-02-11 16:01 - 00000000 ____D () C:\Program Files (x86)\predm 2014-02-11 11:02 - 2014-02-11 11:02 - 00419123 _____ () C:\Users\agusia\Downloads\Dawn Of The Dragons Hack.rar 2014-02-11 09:14 - 2014-02-11 09:14 - 00013934 _____ () C:\Users\agusia\Downloads\scan virus.odt 2014-02-10 22:00 - 2014-02-10 22:00 - 00403261 _____ () C:\Users\agusia\Desktop\f.zip 2014-02-10 17:11 - 2012-05-15 07:13 - 00144896 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll 2014-02-10 17:11 - 2012-05-15 07:13 - 00020992 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-02-10 17:11 - 2012-05-15 06:20 - 00104448 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll 2014-02-10 17:11 - 2012-05-15 06:20 - 00017920 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-02-10 17:07 - 2013-08-14 10:55 - 05905904 _____ (Intel Corporation) C:\Windows\system32\GfxUI.exe 2014-02-10 17:07 - 2013-08-14 10:55 - 00515568 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe 2014-02-10 17:07 - 2013-08-14 10:55 - 00442352 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe 2014-02-10 17:07 - 2013-08-14 10:55 - 00399856 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe 2014-02-10 17:07 - 2013-08-14 10:55 - 00279024 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe 2014-02-10 17:07 - 2013-08-14 10:55 - 00254960 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe 2014-02-10 17:07 - 2013-08-14 10:55 - 00185840 _____ (Intel Corporation) C:\Windows\system32\difx64.exe 2014-02-10 17:07 - 2013-08-14 10:55 - 00172016 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe 2014-02-10 17:07 - 2013-07-01 12:51 - 00342528 _____ (Intel(R) Corporation) C:\Windows\system32\Drivers\IntcDAud.sys 2014-02-10 17:07 - 2013-07-01 12:51 - 00116224 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v3223.dll 2014-02-10 17:07 - 2013-07-01 12:51 - 00016896 _____ (Intel(R) Corporation) C:\Windows\system32\IntcDAuC.dll 2014-02-10 17:07 - 2013-06-27 07:12 - 00017090 _____ () C:\Windows\system32\iglhxs64.vp 2014-02-10 17:07 - 2013-06-27 07:09 - 00330752 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll 2014-02-10 17:07 - 2013-06-27 07:09 - 00025088 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll 2014-02-10 17:07 - 2013-06-27 07:07 - 12615680 _____ (Intel Corporation) C:\Windows\system32\igdumd64.dll 2014-02-10 17:07 - 2013-06-27 07:07 - 05361920 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys 2014-02-10 17:07 - 2013-06-27 07:07 - 00098304 _____ () C:\Windows\system32\igdde64.dll 2014-02-10 17:07 - 2013-06-27 07:07 - 00077312 _____ () C:\Windows\SysWOW64\igdde32.dll 2014-02-10 17:07 - 2013-06-27 07:06 - 09007616 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll 2014-02-10 17:07 - 2013-06-27 07:06 - 00442880 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll 2014-02-10 17:07 - 2013-06-27 07:06 - 00440320 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00439808 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00439808 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00439296 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00439296 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00437248 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00437248 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00435712 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00435712 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00432128 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00431104 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00429056 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00428544 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00410624 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll 2014-02-10 17:07 - 2013-06-27 07:06 - 00286208 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00223664 _____ () C:\Windows\system32\Gfxres.th-TH.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00210106 _____ () C:\Windows\system32\Gfxres.el-GR.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00194245 _____ () C:\Windows\system32\Gfxres.ru-RU.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00175104 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll 2014-02-10 17:07 - 2013-06-27 07:06 - 00166170 _____ () C:\Windows\system32\Gfxres.ar-SA.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00163421 _____ () C:\Windows\system32\Gfxres.ja-JP.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00159008 _____ () C:\Windows\system32\Gfxres.he-IL.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00149682 _____ () C:\Windows\system32\Gfxres.it-IT.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00148042 _____ () C:\Windows\system32\Gfxres.ko-KR.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00147393 _____ () C:\Windows\system32\Gfxres.de-DE.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00147288 _____ () C:\Windows\system32\Gfxres.es-ES.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00146004 _____ () C:\Windows\system32\Gfxres.ro-RO.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00145491 _____ () C:\Windows\system32\Gfxres.fr-FR.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00144645 _____ () C:\Windows\system32\Gfxres.tr-TR.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00144260 _____ () C:\Windows\system32\Gfxres.pt-BR.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00144020 _____ () C:\Windows\system32\Gfxres.nl-NL.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00143932 _____ () C:\Windows\system32\Gfxres.hu-HU.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00142882 _____ () C:\Windows\system32\Gfxres.sv-SE.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00142877 _____ () C:\Windows\system32\Gfxres.pt-PT.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00142717 _____ () C:\Windows\system32\Gfxres.pl-PL.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00142336 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll 2014-02-10 17:07 - 2013-06-27 07:06 - 00142289 _____ () C:\Windows\system32\Gfxres.cs-CZ.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00142008 _____ () C:\Windows\system32\Gfxres.fi-FI.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00141838 _____ () C:\Windows\system32\Gfxres.sk-SK.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00141049 _____ () C:\Windows\system32\Gfxres.hr-HR.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00137889 _____ () C:\Windows\system32\Gfxres.sl-SI.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00137784 _____ () C:\Windows\system32\Gfxres.nb-NO.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00137141 _____ () C:\Windows\system32\Gfxres.da-DK.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00132623 _____ () C:\Windows\system32\Gfxres.en-US.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00126976 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl 2014-02-10 17:07 - 2013-06-27 07:06 - 00126300 _____ () C:\Windows\system32\Gfxres.zh-TW.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00124650 _____ () C:\Windows\system32\Gfxres.zh-CN.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00028672 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll 2014-02-10 17:07 - 2013-06-27 07:06 - 00009728 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll 2014-02-10 17:07 - 2013-06-27 07:05 - 11175936 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10umd32.dll 2014-02-10 17:07 - 2013-06-27 06:58 - 13031424 _____ (Intel Corporation) C:\Windows\system32\ig4icd64.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 03511296 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 03121152 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 01040384 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 00963452 _____ () C:\Windows\SysWOW64\igcodeckrng600.bin 2014-02-10 17:07 - 2013-06-27 06:56 - 00963452 _____ () C:\Windows\system32\igcodeckrng600.bin 2014-02-10 17:07 - 2013-06-27 06:56 - 00931840 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 00575488 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt64.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 00542720 _____ (Intel Corporation) C:\Windows\SysWOW64\igfx11cmrt32.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 00524800 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 00519680 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 00272928 _____ () C:\Windows\SysWOW64\igvpkrng600.bin 2014-02-10 17:07 - 2013-06-27 06:56 - 00272928 _____ () C:\Windows\system32\igvpkrng600.bin 2014-02-10 17:07 - 2013-06-27 06:56 - 00216064 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 00180224 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 00059425 _____ () C:\Windows\system32\iglhxo64.vp 2014-02-10 17:07 - 2013-06-27 06:56 - 00059398 _____ () C:\Windows\system32\iglhxg64.vp 2014-02-10 17:07 - 2013-06-27 06:56 - 00059230 _____ () C:\Windows\system32\iglhxc64.vp 2014-02-10 17:07 - 2013-06-27 06:56 - 00059104 _____ () C:\Windows\system32\iglhxc64_dev.vp 2014-02-10 17:07 - 2013-06-27 06:56 - 00058796 _____ () C:\Windows\system32\iglhxg64_dev.vp 2014-02-10 17:07 - 2013-06-27 06:56 - 00058109 _____ () C:\Windows\system32\iglhxo64_dev.vp 2014-02-10 16:57 - 2014-02-10 16:57 - 00001780 _____ () C:\Users\Public\Desktop\Apps.lnk 2014-02-10 16:56 - 2014-02-10 16:56 - 00001807 _____ () C:\Users\Public\Desktop\Start BlueStacks.lnk 2014-02-10 16:56 - 2014-02-10 16:56 - 00000000 ____D () C:\Program Files (x86)\BlueStacks 2014-02-10 16:55 - 2014-02-10 17:07 - 00000000 ____D () C:\ProgramData\BlueStacksSetup 2014-02-10 16:55 - 2014-02-10 16:56 - 00000000 ____D () C:\ProgramData\BlueStacks 2014-02-10 16:55 - 2014-02-10 16:55 - 10414824 _____ (BlueStack Systems Inc.) C:\Users\agusia\Downloads\BlueStacks-SplitInstaller_native.exe 2014-02-10 16:53 - 2014-02-10 16:53 - 00666648 _____ () C:\Users\agusia\Downloads\BlueStacks-App-Player(35569).exe 2014-02-10 16:32 - 2014-02-10 16:35 - 208666624 _____ () C:\Users\agusia\Downloads\android-x86-4.3-20130725.iso 2014-02-10 16:03 - 2014-02-10 16:06 - 206569472 _____ () C:\Users\agusia\Downloads\android-x86-4.2-20130228.iso 2014-02-10 13:53 - 2014-02-10 13:53 - 00002070 _____ () C:\Users\Public\Desktop\Counter-Strike 1.6 NonSteam.lnk 2014-02-10 13:50 - 2014-02-10 13:53 - 00000000 ____D () C:\Program Files (x86)\Counter-Strike 1.6 NonSteam 2014-02-10 13:41 - 2014-02-10 13:46 - 334566618 _____ () C:\Users\agusia\Downloads\Counter-Strike 1.6 PATCH v50.rar 2014-02-10 12:35 - 2014-02-10 12:38 - 25970356 _____ () C:\Users\agusia\Downloads\Brave Frontier v1.1.1.apk 2014-02-10 11:51 - 2014-02-10 11:51 - 00946627 _____ () C:\Users\agusia\Desktop\Update.zip 2014-02-10 11:50 - 2011-05-02 22:09 - 00000000 ____D () C:\Users\agusia\Desktop\system 2014-02-10 11:33 - 2014-02-10 11:33 - 00946895 _____ () C:\Users\agusia\Downloads\Update.zip 2014-02-10 10:52 - 2014-02-10 10:52 - 00000000 ____D () C:\Users\agusia\Desktop\Nowy folder 2014-02-10 10:52 - 2014-02-10 10:49 - 10627812 _____ () C:\Users\agusia\Desktop\SuperOneClickv2.3.3-ShortFuse.zip 2014-02-10 10:49 - 2014-02-10 10:49 - 10627812 _____ () C:\Users\Public\Desktop\SuperOneClickv2.3.3-ShortFuse.zip 2014-02-10 10:49 - 2014-02-10 10:49 - 00357128 _____ () C:\Users\agusia\Downloads\superoneclick-windows-downloader.exe 2014-02-09 22:47 - 2014-02-09 22:47 - 00403243 _____ () C:\Users\agusia\Desktop\Demolition Duke Hack.zip 2014-02-09 21:38 - 2014-02-09 21:38 - 01144851 _____ () C:\Users\agusia\Downloads\cstrike (1).zip 2014-02-08 19:33 - 2014-02-08 19:33 - 00636030 _____ () C:\Users\agusia\Downloads\Desktop.rar 2014-02-08 18:09 - 2014-02-08 18:09 - 07652580 _____ () C:\Users\agusia\Downloads\HighFpsModels.zip 2014-02-08 10:59 - 2014-02-08 11:00 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-07 12:05 - 2014-02-07 12:06 - 48704734 _____ () C:\Users\agusia\Downloads\BBHF-WAC.rar 2014-02-07 09:35 - 2014-02-07 09:35 - 00000000 _____ () C:\Users\agusia\Downloads\7263182.txt 2014-02-07 09:35 - 2014-02-07 09:35 - 00000000 _____ () C:\Users\agusia\Downloads\7263182 (1).txt 2014-02-07 09:33 - 2014-02-07 09:33 - 00006358 _____ () C:\Users\agusia\Downloads\8892773.txt 2014-02-06 22:16 - 2014-02-06 22:16 - 00403249 _____ () C:\Users\agusia\Desktop\Elemental Kingdoms Hack.zip 2014-02-06 20:42 - 2014-02-06 20:43 - 00403243 _____ () C:\Users\agusia\Desktop\Brave Guardians Hack.zip 2014-02-06 18:08 - 2014-02-06 18:09 - 00031296 _____ () C:\Users\agusia\Desktop\screen480x480.jpeg 2014-02-06 15:55 - 2014-02-06 15:55 - 00403237 _____ () C:\Users\agusia\Desktop\Shadow Blade Hack.zip 2014-02-06 11:45 - 2014-02-06 11:45 - 07652987 _____ () C:\Users\agusia\Downloads\hfps_models.zip 2014-02-05 17:38 - 2014-02-05 17:38 - 01069948 _____ () C:\Users\agusia\Downloads\cstrike (8).rar 2014-02-05 17:19 - 2014-02-05 17:19 - 00066659 _____ () C:\Users\agusia\Downloads\seokeywordsstudio.zip 2014-02-05 17:15 - 2014-02-05 17:15 - 00010793 _____ () C:\Users\agusia\Downloads\SB Crack.rar 2014-02-05 17:09 - 2014-02-05 17:09 - 04414406 _____ () C:\Users\agusia\Downloads\scrapebox.zip 2014-02-04 22:25 - 2014-02-04 22:25 - 00391325 _____ () C:\Users\agusia\Downloads\de_dust2_long0000.rar 2014-02-03 21:00 - 2014-02-03 21:00 - 01947192 _____ (Best Free Spinner ) C:\Users\agusia\Downloads\bfspro.exe 2014-02-03 21:00 - 2014-02-03 21:00 - 00003072 _____ () C:\Users\agusia\AppData\Roaming\bfs.settings 2014-02-03 21:00 - 2014-02-03 21:00 - 00000999 _____ () C:\Users\Public\Desktop\BFS Pro.lnk 2014-02-03 21:00 - 2014-02-03 21:00 - 00000000 ____D () C:\Program Files (x86)\BFS Pro 2014-02-02 19:45 - 2014-02-02 19:45 - 00405789 _____ () C:\Users\agusia\Downloads\Frrrr.rar 2014-02-02 19:41 - 2014-02-02 19:41 - 02761738 _____ () C:\Users\agusia\Downloads\cstrike_polish (1).rar 2014-02-01 19:29 - 2014-02-01 19:30 - 03274422 _____ () C:\Users\agusia\Downloads\cstrike (7).rar 2014-02-01 16:39 - 2014-02-01 21:43 - 00004279 _____ () C:\Users\agusia\Desktop\Nowy dokument tekstowy (5).txt 2014-02-01 14:01 - 2014-02-01 14:01 - 00000625 _____ () C:\Users\agusia\Downloads\Anonymous.txt 2014-01-31 17:03 - 2014-01-31 17:03 - 03695620 _____ () C:\Users\agusia\Downloads\hltv-1401301637-cs_wiocha-1391096220-1391097720.zip 2014-01-30 19:31 - 2014-01-30 19:31 - 02712213 _____ () C:\Users\agusia\Desktop\Castlevania Lords of Shadow 2 Key Generator.zip 2014-01-30 11:20 - 2014-01-06 15:02 - 00431616 _____ (Hewlett-Packard) C:\Users\agusia\Desktop\Dungelot 2 Hack.exe 2014-01-29 22:36 - 2014-01-29 22:36 - 00778274 _____ () C:\Users\agusia\Downloads\MarkItNowLite_Setup.exe 2014-01-29 22:36 - 2014-01-29 22:36 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mark IT Now! 2014-01-29 22:36 - 2014-01-29 22:36 - 00000000 ____D () C:\Users\agusia\AppData\Local\MarkIT Now 2014-01-29 22:36 - 2014-01-29 22:36 - 00000000 ____D () C:\Program Files (x86)\Mark IT Now! 2014-01-29 20:35 - 2014-01-29 20:35 - 01156487 _____ () C:\Users\agusia\Downloads\wp-parallax-content-slider.zip 2014-01-29 20:27 - 2014-01-29 20:27 - 00650377 _____ () C:\Users\agusia\Downloads\bbpress.2.5.3.zip 2014-01-29 20:24 - 2014-01-29 20:25 - 00518160 _____ () C:\Users\agusia\Downloads\easy-wp-parallax-slider.1.0.0.zip 2014-01-29 19:57 - 2014-01-29 19:58 - 05554763 _____ () C:\Users\agusia\Downloads\oblivion.zip 2014-01-28 22:00 - 2014-01-28 22:00 - 01801935 _____ () C:\Users\agusia\Downloads\TheSource.zip 2014-01-28 16:28 - 2014-01-28 16:28 - 00310575 _____ () C:\Users\agusia\Downloads\wordpress-post-tabs.1.4.zip 2014-01-27 19:18 - 2014-01-27 19:18 - 03118607 _____ () C:\Users\agusia\Downloads\Lucid.zip 2014-01-27 18:55 - 2014-01-27 18:55 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft Corporation 2014-01-27 14:26 - 2014-01-27 14:26 - 01889051 _____ () C:\Users\agusia\Downloads\50-000.txt 2014-01-27 11:03 - 2014-01-27 11:03 - 04531894 _____ () C:\Users\agusia\Downloads\lucid1.5.rar 2014-01-27 08:43 - 2014-01-27 08:43 - 03080779 _____ () C:\Users\agusia\Downloads\nisze_zachodnie_uzywane.zip 2014-01-26 09:01 - 2014-01-26 09:02 - 06397424 _____ () C:\Users\agusia\Downloads\Tekstury.rar 2014-01-25 18:18 - 2014-01-25 18:18 - 00000505 _____ () C:\Users\agusia\Desktop\Nowy dokument tekstowy (4).txt 2014-01-23 13:24 - 2014-01-23 13:24 - 00000000 ____D () C:\Users\agusia\Documents\default 2014-01-20 11:52 - 2014-02-14 20:28 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\newnext.me 2014-01-20 11:52 - 2014-02-10 12:42 - 00000000 ____D () C:\Users\agusia\AppData\Local\Mobogenie 2014-01-20 11:52 - 2014-02-10 10:52 - 00000000 ____D () C:\Users\agusia\AppData\Local\cache 2014-01-20 11:52 - 2014-01-25 08:01 - 00000000 ____D () C:\Users\agusia\AppData\Local\genienext 2014-01-20 11:52 - 2014-01-20 11:52 - 00000000 ____D () C:\Users\agusia\Documents\Mobogenie 2014-01-20 11:52 - 2014-01-20 11:52 - 00000000 _____ () C:\Users\agusia\daemonprocess.txt 2014-01-20 11:51 - 2014-02-10 10:52 - 00000000 ____D () C:\Program Files (x86)\Mobogenie 2014-01-20 11:51 - 2014-01-20 11:51 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie 2014-01-20 11:48 - 2014-01-20 11:49 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\DAEMON Tools Lite 2014-01-20 11:48 - 2014-01-20 11:48 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2014-01-20 11:48 - 2014-01-20 11:48 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite 2014-01-20 11:47 - 2014-01-20 11:49 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite 2014-01-20 11:47 - 2014-01-20 11:47 - 13485616 _____ (Disc Soft Ltd) C:\Users\agusia\Downloads\DTLite4481-0347(dobreprogramy.pl).exe 2014-01-20 11:46 - 2014-01-20 11:46 - 00666648 _____ () C:\Users\agusia\Downloads\DAEMON-Tools-Lite(12708).exe 2014-01-20 11:44 - 2014-02-14 11:29 - 00000000 ____D () C:\Users\agusia\VirtualBox VMs 2014-01-20 11:33 - 2014-01-20 11:33 - 00172635 _____ () C:\Users\agusia\Downloads\SS Gruby Lolooo.rar 2014-01-20 11:25 - 2014-01-20 11:38 - 00000000 ____D () C:\Users\agusia\Downloads\xp prof sp3 2014-01-20 11:24 - 2014-01-20 11:25 - 00013085 _____ () C:\Users\agusia\Downloads\Windows XP Professional SP3 [PL].torrent 2014-01-20 11:21 - 2014-01-20 11:21 - 00000814 _____ () C:\Users\agusia\Desktop\µTorrent.lnk 2014-01-20 11:21 - 2014-01-20 11:21 - 00000794 _____ () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2014-01-20 11:20 - 2014-02-14 20:05 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\uTorrent 2014-01-20 11:20 - 2014-01-20 11:20 - 01307736 _____ (BitTorrent Inc.) C:\Users\agusia\Downloads\utorrent.exe 2014-01-20 11:19 - 2014-01-20 11:19 - 00013109 _____ () C:\Users\agusia\Downloads\Windows_XP_SP3_[PL]_[ iso].torrent 2014-01-20 11:14 - 2014-02-14 11:29 - 00000000 ____D () C:\Users\agusia\.VirtualBox 2014-01-20 11:13 - 2014-01-20 11:13 - 00001076 _____ () C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk 2014-01-20 11:13 - 2013-12-18 17:19 - 00252688 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys 2014-01-20 11:12 - 2014-01-20 11:12 - 00000000 ____D () C:\Program Files\Oracle 2014-01-20 11:12 - 2013-12-18 17:16 - 00126736 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys 2014-01-20 11:10 - 2014-01-20 11:10 - 106322704 _____ (Oracle Corporation) C:\Users\agusia\Downloads\VirtualBox-4.3.6-91406-Win.exe 2014-01-20 11:08 - 2014-01-20 11:08 - 00666648 _____ () C:\Users\agusia\Downloads\VirtualBox(13122).exe 2014-01-19 17:43 - 2014-01-19 17:43 - 00002614 _____ () C:\Users\agusia\Downloads\www-addonsbestgame-com_20140119T164309Z_DisavowLinks.csv 2014-01-19 17:34 - 2014-01-19 17:34 - 00002641 _____ () C:\Users\agusia\Downloads\Critical Backlinks Addonsbestgame.com-2014-January-19.txt 2014-01-19 17:32 - 2014-01-19 17:32 - 00007250 _____ () C:\Users\agusia\Downloads\nnnn-2014-January-19 (2).xlsx 2014-01-19 17:31 - 2014-01-19 17:31 - 00007426 _____ () C:\Users\agusia\Downloads\nnnn-2014-January-19 (1).xlsx 2014-01-19 17:30 - 2014-01-19 17:30 - 00007427 _____ () C:\Users\agusia\Downloads\nnnn-2014-January-19.xlsx 2014-01-19 14:44 - 2014-01-19 14:44 - 02347384 _____ (ESET) C:\Users\agusia\Downloads\esetsmartinstaller_plk.exe 2014-01-19 14:44 - 2014-01-19 14:44 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-01-18 11:16 - 2014-01-18 11:16 - 00710899 _____ () C:\Users\agusia\Downloads\cstrike (6).rar 2014-01-17 21:32 - 2014-01-17 21:32 - 00000000 ____D () C:\Windows\SysWOW64\no 2014-01-17 21:32 - 2014-01-17 21:32 - 00000000 ____D () C:\Program Files (x86)\SRSRoot 2014-01-17 21:28 - 2014-01-17 21:29 - 07637848 _____ (123unlock ) C:\Users\agusia\Downloads\SRSRoot-Setup.exe 2014-01-17 21:12 - 2014-01-17 21:12 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneClickRoot 2014-01-17 21:10 - 2014-01-17 21:11 - 18123472 _____ (OneClickRoot) C:\Users\agusia\Downloads\OneClickRoot.exe 2014-01-17 18:51 - 2014-01-21 08:57 - 00000000 ____D () C:\Program Files (x86)\ZhuoDaShi 2014-01-17 18:45 - 2014-01-17 18:47 - 11131512 _____ (OPDA Team ) C:\Users\agusia\Downloads\ZhuoDaShi-2.2.17-setup.exe 2014-01-17 18:25 - 2014-01-21 09:00 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UnlockRoot Pro 2014-01-17 18:25 - 2014-01-21 09:00 - 00000000 ____D () C:\Program Files (x86)\Unlockroot Pro 2014-01-17 18:25 - 2014-01-21 09:00 - 00000000 ____D () C:\Program Files (x86)\Unlockroot 2014-01-17 18:24 - 2014-01-17 18:24 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SmartTweak Software 2014-01-17 18:24 - 2014-01-17 18:24 - 00000000 ____D () C:\Program Files (x86)\SmartTweak 2014-01-17 18:22 - 2014-01-17 18:22 - 00163344 _____ () C:\Users\agusia\Downloads\UnlockRoot_downloader_by_UnlockRoot.exe 2014-01-17 18:18 - 2014-01-17 18:18 - 00000000 ____D () C:\Users\agusia\Documents\Optimizer Pro 2014-01-17 18:18 - 2014-01-17 18:18 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Optimizer Pro 2014-01-17 18:13 - 2014-01-29 09:32 - 00000000 ____D () C:\Program Files (x86)\Optimizer Pro 2014-01-17 18:12 - 2014-02-14 18:02 - 00000406 _____ () C:\Windows\Tasks\Show-Password Update.job 2014-01-17 18:12 - 2014-01-17 18:12 - 00003254 _____ () C:\Windows\System32\Tasks\SomotoUpdateCheckerAutoStart 2014-01-17 18:12 - 2014-01-17 18:12 - 00003056 _____ () C:\Windows\System32\Tasks\Show-Password Update 2014-01-17 18:12 - 2014-01-17 18:12 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker 2014-01-17 18:12 - 2014-01-17 18:12 - 00000000 ____D () C:\Users\agusia\AppData\Local\FilesFrog Update Checker 2014-01-17 18:12 - 2014-01-17 18:12 - 00000000 ____D () C:\Program Files (x86)\Show-Password 2014-01-17 18:11 - 2014-01-17 18:11 - 00163344 _____ () C:\Users\agusia\Downloads\UnlockRoot_downloader_by_UnlockRoot (1).exe 2014-01-17 18:10 - 2014-01-17 18:10 - 00166632 _____ () C:\Users\agusia\Downloads\Niepotwierdzony 754611.crdownload 2014-01-17 18:10 - 2014-01-17 18:10 - 00163344 _____ () C:\Users\agusia\Downloads\Niepotwierdzony 725576.crdownload 2014-01-17 17:46 - 2014-01-17 18:53 - 00000000 ____D () C:\Users\agusia\.android 2014-01-17 17:44 - 2014-01-17 17:44 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_ssadadb_01005.Wdf 2014-01-17 17:37 - 2013-05-02 05:23 - 01919168 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01005.dll 2014-01-17 17:37 - 2013-05-02 05:23 - 01919168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfCoInstaller01005.dll 2014-01-17 17:37 - 2013-05-02 05:23 - 00188232 _____ (MCCI Corporation) C:\Windows\system32\Drivers\ssadmdm.sys 2014-01-17 17:37 - 2013-05-02 05:23 - 00169288 _____ (MCCI Corporation) C:\Windows\system32\Drivers\ssadbus.sys 2014-01-17 17:37 - 2013-05-02 05:23 - 00158024 _____ (MCCI Corporation) C:\Windows\system32\Drivers\ssadserd.sys 2014-01-17 17:37 - 2013-05-02 05:23 - 00038080 _____ (Google Inc) C:\Windows\system32\Drivers\ssadadb.sys 2014-01-17 17:37 - 2013-05-02 05:23 - 00021320 _____ (MCCI Corporation) C:\Windows\system32\Drivers\ssadmdfl.sys 2014-01-17 17:37 - 2013-05-02 05:23 - 00017736 _____ (MCCI Corporation) C:\Windows\system32\Drivers\ssadwhnt.sys 2014-01-17 17:37 - 2013-05-02 05:23 - 00017736 _____ (MCCI Corporation) C:\Windows\system32\Drivers\ssadwh.sys 2014-01-17 17:37 - 2013-05-02 05:23 - 00017224 _____ (MCCI Corporation) C:\Windows\system32\Drivers\ssadcmnt.sys 2014-01-17 17:37 - 2013-05-02 05:23 - 00017224 _____ (MCCI Corporation) C:\Windows\system32\Drivers\ssadcm.sys 2014-01-17 17:36 - 2014-01-17 17:36 - 00000000 ____D () C:\ProgramData\Samsung 2014-01-17 17:36 - 2014-01-17 17:36 - 00000000 ____D () C:\Program Files\SAMSUNG 2014-01-17 17:36 - 2013-05-02 05:23 - 00188232 _____ (MCCI Corporation) C:\Windows\system32\Drivers\sscdmdm.sys 2014-01-17 17:36 - 2013-05-02 05:23 - 00169288 _____ (MCCI Corporation) C:\Windows\system32\Drivers\sscdbus.sys 2014-01-17 17:36 - 2013-05-02 05:23 - 00158024 _____ (MCCI Corporation) C:\Windows\system32\Drivers\sscdserd.sys 2014-01-17 17:36 - 2013-05-02 05:23 - 00021320 _____ (MCCI Corporation) C:\Windows\system32\Drivers\sscdmdfl.sys 2014-01-17 17:36 - 2013-05-02 05:23 - 00017736 _____ (MCCI Corporation) C:\Windows\system32\Drivers\sscdwhnt.sys 2014-01-17 17:36 - 2013-05-02 05:23 - 00017736 _____ (MCCI Corporation) C:\Windows\system32\Drivers\sscdwh.sys 2014-01-17 17:36 - 2013-05-02 05:23 - 00017224 _____ (MCCI Corporation) C:\Windows\system32\Drivers\sscdcmnt.sys 2014-01-17 17:36 - 2013-05-02 05:23 - 00017224 _____ (MCCI Corporation) C:\Windows\system32\Drivers\sscdcm.sys 2014-01-17 17:33 - 2014-01-17 17:33 - 00000000 ____D () C:\Users\agusia\Documents\wmshua 2014-01-17 17:33 - 2014-01-17 17:33 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\ZJMedia 2014-01-17 17:33 - 2014-01-17 17:33 - 00000000 ____D () C:\Users\agusia\AppData\Local\ZJMedia 2014-01-17 17:32 - 2014-02-14 19:14 - 00000000 ____D () C:\Users\agusia\AppData\Local\fst_pl_31 2014-01-17 17:32 - 2014-01-21 08:59 - 00000000 ____D () C:\Users\agusia\AppData\Local\Lollipop 2014-01-17 17:32 - 2014-01-17 17:34 - 00000000 ____D () C:\Program Files (x86)\Kingo Android ROOT 2014-01-17 17:32 - 2014-01-17 17:32 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Lollipop 2014-01-17 17:32 - 2014-01-17 17:32 - 00000000 ____D () C:\Program Files (x86)\fst_pl_31 2014-01-17 17:31 - 2014-01-17 17:31 - 00227800 _____ () C:\Users\agusia\Downloads\KingoAndroidRoot_downloader-9XauH1U5.exe 2014-01-17 17:24 - 2014-01-17 17:24 - 00289508 _____ () C:\Users\agusia\Downloads\Game Killer v2.61.apk 2014-01-16 21:16 - 2014-01-16 21:16 - 04178604 _____ () C:\Users\agusia\Downloads\hltv-1401161512-de_kabul-1389881520-1389882960.zip 2014-01-16 21:15 - 2014-01-16 21:15 - 01135277 _____ () C:\Users\agusia\Downloads\cstrike (5).rar 2014-01-16 15:20 - 2014-01-16 15:20 - 03647203 _____ () C:\Users\agusia\Downloads\hltv-1401161331-de_dust4ever-1389875460-1389876960.zip 2014-01-15 22:14 - 2014-01-15 22:15 - 08499404 _____ () C:\Users\agusia\Downloads\Najwięksi Zbrodniarze Wojenni - HITLER I STALIN 3.mp4 2014-01-15 21:47 - 2014-01-15 22:03 - 88977612 _____ () C:\Users\agusia\Downloads\Najwięksi Zbrodniarze Wojenni - Heinrich Himmler CAŁOŚĆ.mp4 2014-01-15 17:49 - 2014-01-15 17:49 - 00537791 _____ () C:\Users\agusia\Downloads\gsa.rar 2014-01-15 15:27 - 2014-01-15 15:27 - 00731017 _____ () C:\Users\agusia\Downloads\cstrike (4).rar 2014-01-15 14:55 - 2014-01-15 14:55 - 00731017 _____ () C:\Users\agusia\Downloads\cstrike (3).rar ==================== One Month Modified Files and Folders ======= 2014-02-14 21:01 - 2014-02-14 21:00 - 00028025 _____ () C:\Users\agusia\Downloads\FRST.txt 2014-02-14 21:00 - 2014-02-14 21:00 - 00000000 ____D () C:\FRST 2014-02-14 21:00 - 2014-02-14 20:59 - 02152960 _____ (Farbar) C:\Users\agusia\Downloads\FRST64.exe 2014-02-14 20:52 - 2013-05-03 14:59 - 00068610 _____ () C:\Users\agusia\Desktop\Extras.Txt 2014-02-14 20:50 - 2012-12-17 15:25 - 00001048 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-14 20:49 - 2013-05-03 14:58 - 00198570 _____ () C:\Users\agusia\Desktop\OTL.Txt 2014-02-14 20:40 - 2013-01-01 17:35 - 00000932 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2927037778-1233708203-2928765012-1000UA.job 2014-02-14 20:32 - 2014-02-14 20:32 - 00602112 _____ (OldTimer Tools) C:\Users\agusia\Downloads\OTL.exe 2014-02-14 20:28 - 2014-01-20 11:52 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\newnext.me 2014-02-14 20:15 - 2013-12-10 14:26 - 00000930 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-14 20:06 - 2011-12-12 00:31 - 01548482 _____ () C:\Windows\WindowsUpdate.log 2014-02-14 20:05 - 2014-01-20 11:20 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\uTorrent 2014-02-14 19:48 - 2014-02-14 19:48 - 00403233 _____ () C:\Users\agusia\Desktop\Dungelot 2 Hack.zip 2014-02-14 19:42 - 2014-01-02 21:30 - 00000000 ____D () C:\Users\agusia\Desktop\output 2014-02-14 19:14 - 2014-01-17 17:32 - 00000000 ____D () C:\Users\agusia\AppData\Local\fst_pl_31 2014-02-14 18:38 - 2014-02-12 09:28 - 00000286 _____ () C:\Windows\Tasks\bench-Updater removing.job 2014-02-14 18:02 - 2014-01-17 18:12 - 00000406 _____ () C:\Windows\Tasks\Show-Password Update.job 2014-02-14 17:56 - 2014-02-14 17:56 - 00001219 _____ () C:\Users\agusia\Desktop\PIT pro 2013.lnk 2014-02-14 17:56 - 2014-02-14 17:56 - 00000000 ____D () C:\Program Files (x86)\Podatnik.info 2014-02-14 17:56 - 2014-02-14 17:52 - 18302464 _____ (Podatnik.info Sp. z o.o. ) C:\Users\agusia\Downloads\Instaluj_program_PIT_PRO_2013 (2).exe 2014-02-14 17:56 - 2013-02-18 17:41 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Podatnik.info 2014-02-14 17:52 - 2014-02-14 17:51 - 18302416 _____ (Podatnik.info Sp. z o.o. ) C:\Users\agusia\Downloads\Instaluj_program_PIT_PRO_2013 (1).exe 2014-02-14 17:40 - 2013-01-01 17:35 - 00000910 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2927037778-1233708203-2928765012-1000Core.job 2014-02-14 17:28 - 2014-02-11 16:01 - 00000346 _____ () C:\Windows\Tasks\bench-sys.job 2014-02-14 15:57 - 2013-10-09 19:09 - 00003192 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForagusia 2014-02-14 15:57 - 2013-10-09 19:09 - 00000336 _____ () C:\Windows\Tasks\HPCeeScheduleForagusia.job 2014-02-14 15:19 - 2014-02-14 15:17 - 00000000 ____D () C:\Program Files (x86)\BacklinkBeast 2014-02-14 15:17 - 2014-02-14 15:17 - 00001969 _____ () C:\Users\Public\Desktop\BacklinkBeast.lnk 2014-02-14 15:16 - 2014-02-14 15:16 - 13813716 _____ () C:\Users\agusia\Downloads\BBeast.rar 2014-02-14 14:46 - 2012-12-17 13:19 - 00003974 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{72F69AC9-5AD0-46CB-B469-2BAA73A78A21} 2014-02-14 14:34 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-14 14:34 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-14 14:26 - 2012-12-17 15:25 - 00001044 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-14 14:26 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-14 14:26 - 2009-07-14 05:51 - 00091181 _____ () C:\Windows\setupact.log 2014-02-14 13:58 - 2014-02-14 13:58 - 00403237 _____ () C:\Users\agusia\Desktop\Castle Clash Hack.zip 2014-02-14 11:29 - 2014-01-20 11:44 - 00000000 ____D () C:\Users\agusia\VirtualBox VMs 2014-02-14 11:29 - 2014-01-20 11:14 - 00000000 ____D () C:\Users\agusia\.VirtualBox 2014-02-14 09:00 - 2014-02-14 09:00 - 00403243 _____ () C:\Users\agusia\Desktop\Deadman's Cross Hack.zip 2014-02-14 07:53 - 2013-02-17 15:15 - 00000000 ____D () C:\Users\agusia\AppData\Local\Adobe 2014-02-13 22:11 - 2014-02-12 11:43 - 00064754 _____ () C:\Users\agusia\Desktop\screen568x568.jpeg 2014-02-13 21:55 - 2014-02-13 21:54 - 00403241 _____ () C:\Users\agusia\Desktop\Clear Vision 3 Hack.zip 2014-02-13 14:47 - 2014-02-13 14:47 - 00001929 _____ () C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk 2014-02-13 14:46 - 2014-02-13 14:46 - 00000000 ____D () C:\Program Files\McAfee Security Scan 2014-02-12 16:58 - 2014-02-12 07:41 - 00403225 _____ () C:\Users\agusia\Desktop\Zombie Commando 2014 Hack.zip 2014-02-12 09:28 - 2014-02-12 09:28 - 00003226 _____ () C:\Windows\System32\Tasks\bench-Updater removing 2014-02-12 08:24 - 2014-02-12 08:24 - 00141776 _____ () C:\Users\agusia\Downloads\Royal Story Hack Tool v9.1.rar 2014-02-12 07:36 - 2014-02-11 16:01 - 00000266 __RSH () C:\ProgramData\ntuser.pol 2014-02-12 07:36 - 2014-02-11 16:01 - 00000000 ____D () C:\Program Files (x86)\Bench 2014-02-12 07:31 - 2013-06-28 14:03 - 00000000 ____D () C:\Users\agusia\Documents\Visual Studio 2010 2014-02-11 21:57 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\LiveKernelReports 2014-02-11 21:17 - 2013-08-07 09:35 - 00000000 ____D () C:\Users\agusia\.gimp-2.8 2014-02-11 16:20 - 2014-02-11 16:20 - 00004761 _____ () C:\Users\agusia\AppData\Local\recently-used.xbel 2014-02-11 16:20 - 2013-08-07 09:38 - 00000000 ____D () C:\Users\agusia\AppData\Local\gtk-2.0 2014-02-11 16:08 - 2014-02-11 16:07 - 00000000 ____D () C:\Program Files\GIMP 2 2014-02-11 16:05 - 2014-02-11 16:05 - 90396104 _____ (The GIMP Team ) C:\Users\agusia\Downloads\gimp-2.8.10-setup(dobreprogramy.pl).exe 2014-02-11 16:03 - 2014-02-11 16:03 - 00666648 _____ () C:\Users\agusia\Downloads\GIMP(13219).exe 2014-02-11 16:01 - 2014-02-11 16:01 - 00003242 _____ () C:\Windows\System32\Tasks\bench-sys 2014-02-11 16:01 - 2014-02-11 16:01 - 00000000 ____D () C:\Program Files (x86)\predm 2014-02-11 16:01 - 2009-07-14 04:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy 2014-02-11 16:01 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\GroupPolicy 2014-02-11 11:02 - 2014-02-11 11:02 - 00419123 _____ () C:\Users\agusia\Downloads\Dawn Of The Dragons Hack.rar 2014-02-11 09:14 - 2014-02-11 09:14 - 00013934 _____ () C:\Users\agusia\Downloads\scan virus.odt 2014-02-11 08:45 - 2012-12-17 15:25 - 00004044 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-11 08:45 - 2012-12-17 15:25 - 00003792 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-10 22:00 - 2014-02-10 22:00 - 00403261 _____ () C:\Users\agusia\Desktop\f.zip 2014-02-10 17:11 - 2011-12-12 00:52 - 00000000 ____D () C:\ProgramData\Intel 2014-02-10 17:11 - 2011-12-12 00:27 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-02-10 17:07 - 2014-02-10 16:55 - 00000000 ____D () C:\ProgramData\BlueStacksSetup 2014-02-10 16:57 - 2014-02-10 16:57 - 00001780 _____ () C:\Users\Public\Desktop\Apps.lnk 2014-02-10 16:57 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Public\Libraries 2014-02-10 16:56 - 2014-02-10 16:56 - 00001807 _____ () C:\Users\Public\Desktop\Start BlueStacks.lnk 2014-02-10 16:56 - 2014-02-10 16:56 - 00000000 ____D () C:\Program Files (x86)\BlueStacks 2014-02-10 16:56 - 2014-02-10 16:55 - 00000000 ____D () C:\ProgramData\BlueStacks 2014-02-10 16:55 - 2014-02-10 16:55 - 10414824 _____ (BlueStack Systems Inc.) C:\Users\agusia\Downloads\BlueStacks-SplitInstaller_native.exe 2014-02-10 16:53 - 2014-02-10 16:53 - 00666648 _____ () C:\Users\agusia\Downloads\BlueStacks-App-Player(35569).exe 2014-02-10 16:35 - 2014-02-10 16:32 - 208666624 _____ () C:\Users\agusia\Downloads\android-x86-4.3-20130725.iso 2014-02-10 16:06 - 2014-02-10 16:03 - 206569472 _____ () C:\Users\agusia\Downloads\android-x86-4.2-20130228.iso 2014-02-10 13:53 - 2014-02-10 13:53 - 00002070 _____ () C:\Users\Public\Desktop\Counter-Strike 1.6 NonSteam.lnk 2014-02-10 13:53 - 2014-02-10 13:50 - 00000000 ____D () C:\Program Files (x86)\Counter-Strike 1.6 NonSteam 2014-02-10 13:46 - 2014-02-10 13:41 - 334566618 _____ () C:\Users\agusia\Downloads\Counter-Strike 1.6 PATCH v50.rar 2014-02-10 12:42 - 2014-01-20 11:52 - 00000000 ____D () C:\Users\agusia\AppData\Local\Mobogenie 2014-02-10 12:38 - 2014-02-10 12:35 - 25970356 _____ () C:\Users\agusia\Downloads\Brave Frontier v1.1.1.apk 2014-02-10 11:51 - 2014-02-10 11:51 - 00946627 _____ () C:\Users\agusia\Desktop\Update.zip 2014-02-10 11:50 - 2011-10-21 19:26 - 00737480 _____ () C:\Windows\system32\perfh015.dat 2014-02-10 11:50 - 2011-10-21 19:26 - 00154136 _____ () C:\Windows\system32\perfc015.dat 2014-02-10 11:50 - 2009-07-14 06:13 - 01661232 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-10 11:33 - 2014-02-10 11:33 - 00946895 _____ () C:\Users\agusia\Downloads\Update.zip 2014-02-10 10:52 - 2014-02-10 10:52 - 00000000 ____D () C:\Users\agusia\Desktop\Nowy folder 2014-02-10 10:52 - 2014-01-20 11:52 - 00000000 ____D () C:\Users\agusia\AppData\Local\cache 2014-02-10 10:52 - 2014-01-20 11:51 - 00000000 ____D () C:\Program Files (x86)\Mobogenie 2014-02-10 10:49 - 2014-02-10 10:52 - 10627812 _____ () C:\Users\agusia\Desktop\SuperOneClickv2.3.3-ShortFuse.zip 2014-02-10 10:49 - 2014-02-10 10:49 - 10627812 _____ () C:\Users\Public\Desktop\SuperOneClickv2.3.3-ShortFuse.zip 2014-02-10 10:49 - 2014-02-10 10:49 - 00357128 _____ () C:\Users\agusia\Downloads\superoneclick-windows-downloader.exe 2014-02-10 06:48 - 2013-12-07 21:21 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-09 22:47 - 2014-02-09 22:47 - 00403243 _____ () C:\Users\agusia\Desktop\Demolition Duke Hack.zip 2014-02-09 21:38 - 2014-02-09 21:38 - 01144851 _____ () C:\Users\agusia\Downloads\cstrike (1).zip 2014-02-08 19:33 - 2014-02-08 19:33 - 00636030 _____ () C:\Users\agusia\Downloads\Desktop.rar 2014-02-08 18:09 - 2014-02-08 18:09 - 07652580 _____ () C:\Users\agusia\Downloads\HighFpsModels.zip 2014-02-08 11:00 - 2014-02-08 10:59 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-07 12:06 - 2014-02-07 12:05 - 48704734 _____ () C:\Users\agusia\Downloads\BBHF-WAC.rar 2014-02-07 09:35 - 2014-02-07 09:35 - 00000000 _____ () C:\Users\agusia\Downloads\7263182.txt 2014-02-07 09:35 - 2014-02-07 09:35 - 00000000 _____ () C:\Users\agusia\Downloads\7263182 (1).txt 2014-02-07 09:33 - 2014-02-07 09:33 - 00006358 _____ () C:\Users\agusia\Downloads\8892773.txt 2014-02-06 22:16 - 2014-02-06 22:16 - 00403249 _____ () C:\Users\agusia\Desktop\Elemental Kingdoms Hack.zip 2014-02-06 20:43 - 2014-02-06 20:42 - 00403243 _____ () C:\Users\agusia\Desktop\Brave Guardians Hack.zip 2014-02-06 18:09 - 2014-02-06 18:08 - 00031296 _____ () C:\Users\agusia\Desktop\screen480x480.jpeg 2014-02-06 17:19 - 2012-12-17 15:35 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Skype 2014-02-06 17:00 - 2012-12-17 15:35 - 00000000 ____D () C:\Users\agusia\Documents\Youcam 2014-02-06 15:55 - 2014-02-06 15:55 - 00403237 _____ () C:\Users\agusia\Desktop\Shadow Blade Hack.zip 2014-02-06 11:45 - 2014-02-06 11:45 - 07652987 _____ () C:\Users\agusia\Downloads\hfps_models.zip 2014-02-05 19:15 - 2013-12-10 14:26 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-05 19:15 - 2013-12-10 14:26 - 00003868 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-05 19:15 - 2011-10-21 10:00 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-05 17:38 - 2014-02-05 17:38 - 01069948 _____ () C:\Users\agusia\Downloads\cstrike (8).rar 2014-02-05 17:19 - 2014-02-05 17:19 - 00066659 _____ () C:\Users\agusia\Downloads\seokeywordsstudio.zip 2014-02-05 17:15 - 2014-02-05 17:15 - 00010793 _____ () C:\Users\agusia\Downloads\SB Crack.rar 2014-02-05 17:09 - 2014-02-05 17:09 - 04414406 _____ () C:\Users\agusia\Downloads\scrapebox.zip 2014-02-04 22:25 - 2014-02-04 22:25 - 00391325 _____ () C:\Users\agusia\Downloads\de_dust2_long0000.rar 2014-02-03 21:00 - 2014-02-03 21:00 - 01947192 _____ (Best Free Spinner ) C:\Users\agusia\Downloads\bfspro.exe 2014-02-03 21:00 - 2014-02-03 21:00 - 00003072 _____ () C:\Users\agusia\AppData\Roaming\bfs.settings 2014-02-03 21:00 - 2014-02-03 21:00 - 00000999 _____ () C:\Users\Public\Desktop\BFS Pro.lnk 2014-02-03 21:00 - 2014-02-03 21:00 - 00000000 ____D () C:\Program Files (x86)\BFS Pro 2014-02-02 22:20 - 2014-01-11 17:08 - 00002389 _____ () C:\Users\agusia\Desktop\Nowy dokument tekstowy (3).txt 2014-02-02 19:45 - 2014-02-02 19:45 - 00405789 _____ () C:\Users\agusia\Downloads\Frrrr.rar 2014-02-02 19:41 - 2014-02-02 19:41 - 02761738 _____ () C:\Users\agusia\Downloads\cstrike_polish (1).rar 2014-02-01 21:43 - 2014-02-01 16:39 - 00004279 _____ () C:\Users\agusia\Desktop\Nowy dokument tekstowy (5).txt 2014-02-01 19:30 - 2014-02-01 19:29 - 03274422 _____ () C:\Users\agusia\Downloads\cstrike (7).rar 2014-02-01 14:01 - 2014-02-01 14:01 - 00000625 _____ () C:\Users\agusia\Downloads\Anonymous.txt 2014-01-31 17:03 - 2014-01-31 17:03 - 03695620 _____ () C:\Users\agusia\Downloads\hltv-1401301637-cs_wiocha-1391096220-1391097720.zip 2014-01-30 19:31 - 2014-01-30 19:31 - 02712213 _____ () C:\Users\agusia\Desktop\Castlevania Lords of Shadow 2 Key Generator.zip 2014-01-30 18:22 - 2011-10-21 09:56 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard 2014-01-30 18:19 - 2011-10-21 10:14 - 00000000 ____D () C:\ProgramData\Hewlett-Packard 2014-01-30 18:18 - 2011-02-10 20:23 - 00000000 ____D () C:\SWSetup 2014-01-29 22:36 - 2014-01-29 22:36 - 00778274 _____ () C:\Users\agusia\Downloads\MarkItNowLite_Setup.exe 2014-01-29 22:36 - 2014-01-29 22:36 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mark IT Now! 2014-01-29 22:36 - 2014-01-29 22:36 - 00000000 ____D () C:\Users\agusia\AppData\Local\MarkIT Now 2014-01-29 22:36 - 2014-01-29 22:36 - 00000000 ____D () C:\Program Files (x86)\Mark IT Now! 2014-01-29 20:35 - 2014-01-29 20:35 - 01156487 _____ () C:\Users\agusia\Downloads\wp-parallax-content-slider.zip 2014-01-29 20:27 - 2014-01-29 20:27 - 00650377 _____ () C:\Users\agusia\Downloads\bbpress.2.5.3.zip 2014-01-29 20:25 - 2014-01-29 20:24 - 00518160 _____ () C:\Users\agusia\Downloads\easy-wp-parallax-slider.1.0.0.zip 2014-01-29 19:58 - 2014-01-29 19:57 - 05554763 _____ () C:\Users\agusia\Downloads\oblivion.zip 2014-01-29 09:34 - 2013-01-16 16:42 - 00000000 _____ () C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt 2014-01-29 09:34 - 2012-12-19 12:56 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log 2014-01-29 09:32 - 2014-01-17 18:13 - 00000000 ____D () C:\Program Files (x86)\Optimizer Pro 2014-01-28 22:00 - 2014-01-28 22:00 - 01801935 _____ () C:\Users\agusia\Downloads\TheSource.zip 2014-01-28 16:28 - 2014-01-28 16:28 - 00310575 _____ () C:\Users\agusia\Downloads\wordpress-post-tabs.1.4.zip 2014-01-27 19:18 - 2014-01-27 19:18 - 03118607 _____ () C:\Users\agusia\Downloads\Lucid.zip 2014-01-27 18:55 - 2014-01-27 18:55 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft Corporation 2014-01-27 14:59 - 2013-10-20 14:55 - 00953645 _____ () C:\Users\agusia\Downloads\SkinyVB.zip 2014-01-27 14:26 - 2014-01-27 14:26 - 01889051 _____ () C:\Users\agusia\Downloads\50-000.txt 2014-01-27 11:03 - 2014-01-27 11:03 - 04531894 _____ () C:\Users\agusia\Downloads\lucid1.5.rar 2014-01-27 08:43 - 2014-01-27 08:43 - 03080779 _____ () C:\Users\agusia\Downloads\nisze_zachodnie_uzywane.zip 2014-01-26 09:02 - 2014-01-26 09:01 - 06397424 _____ () C:\Users\agusia\Downloads\Tekstury.rar 2014-01-25 18:18 - 2014-01-25 18:18 - 00000505 _____ () C:\Users\agusia\Desktop\Nowy dokument tekstowy (4).txt 2014-01-25 08:01 - 2014-01-20 11:52 - 00000000 ____D () C:\Users\agusia\AppData\Local\genienext 2014-01-23 13:24 - 2014-01-23 13:24 - 00000000 ____D () C:\Users\agusia\Documents\default 2014-01-21 19:51 - 2012-12-17 15:29 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\GG 2014-01-21 15:58 - 2010-11-21 04:47 - 00392662 _____ () C:\Windows\PFRO.log 2014-01-21 09:00 - 2014-01-17 18:25 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UnlockRoot Pro 2014-01-21 09:00 - 2014-01-17 18:25 - 00000000 ____D () C:\Program Files (x86)\Unlockroot Pro 2014-01-21 09:00 - 2014-01-17 18:25 - 00000000 ____D () C:\Program Files (x86)\Unlockroot 2014-01-21 08:59 - 2014-01-17 17:32 - 00000000 ____D () C:\Users\agusia\AppData\Local\Lollipop 2014-01-21 08:57 - 2014-01-17 18:51 - 00000000 ____D () C:\Program Files (x86)\ZhuoDaShi 2014-01-21 08:56 - 2012-12-19 13:13 - 00000000 ____D () C:\Firefox 2014-01-20 11:52 - 2014-01-20 11:52 - 00000000 ____D () C:\Users\agusia\Documents\Mobogenie 2014-01-20 11:52 - 2014-01-20 11:52 - 00000000 _____ () C:\Users\agusia\daemonprocess.txt 2014-01-20 11:52 - 2012-12-17 13:11 - 00000000 ____D () C:\Users\agusia 2014-01-20 11:51 - 2014-01-20 11:51 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie 2014-01-20 11:49 - 2014-01-20 11:48 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\DAEMON Tools Lite 2014-01-20 11:49 - 2014-01-20 11:47 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite 2014-01-20 11:48 - 2014-01-20 11:48 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2014-01-20 11:48 - 2014-01-20 11:48 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite 2014-01-20 11:47 - 2014-01-20 11:47 - 13485616 _____ (Disc Soft Ltd) C:\Users\agusia\Downloads\DTLite4481-0347(dobreprogramy.pl).exe 2014-01-20 11:46 - 2014-01-20 11:46 - 00666648 _____ () C:\Users\agusia\Downloads\DAEMON-Tools-Lite(12708).exe 2014-01-20 11:38 - 2014-01-20 11:25 - 00000000 ____D () C:\Users\agusia\Downloads\xp prof sp3 2014-01-20 11:33 - 2014-01-20 11:33 - 00172635 _____ () C:\Users\agusia\Downloads\SS Gruby Lolooo.rar 2014-01-20 11:25 - 2014-01-20 11:24 - 00013085 _____ () C:\Users\agusia\Downloads\Windows XP Professional SP3 [PL].torrent 2014-01-20 11:21 - 2014-01-20 11:21 - 00000814 _____ () C:\Users\agusia\Desktop\µTorrent.lnk 2014-01-20 11:21 - 2014-01-20 11:21 - 00000794 _____ () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2014-01-20 11:20 - 2014-01-20 11:20 - 01307736 _____ (BitTorrent Inc.) C:\Users\agusia\Downloads\utorrent.exe 2014-01-20 11:19 - 2014-01-20 11:19 - 00013109 _____ () C:\Users\agusia\Downloads\Windows_XP_SP3_[PL]_[ iso].torrent 2014-01-20 11:13 - 2014-01-20 11:13 - 00001076 _____ () C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk 2014-01-20 11:12 - 2014-01-20 11:12 - 00000000 ____D () C:\Program Files\Oracle 2014-01-20 11:10 - 2014-01-20 11:10 - 106322704 _____ (Oracle Corporation) C:\Users\agusia\Downloads\VirtualBox-4.3.6-91406-Win.exe 2014-01-20 11:08 - 2014-01-20 11:08 - 00666648 _____ () C:\Users\agusia\Downloads\VirtualBox(13122).exe 2014-01-19 17:43 - 2014-01-19 17:43 - 00002614 _____ () C:\Users\agusia\Downloads\www-addonsbestgame-com_20140119T164309Z_DisavowLinks.csv 2014-01-19 17:34 - 2014-01-19 17:34 - 00002641 _____ () C:\Users\agusia\Downloads\Critical Backlinks Addonsbestgame.com-2014-January-19.txt 2014-01-19 17:32 - 2014-01-19 17:32 - 00007250 _____ () C:\Users\agusia\Downloads\nnnn-2014-January-19 (2).xlsx 2014-01-19 17:31 - 2014-01-19 17:31 - 00007426 _____ () C:\Users\agusia\Downloads\nnnn-2014-January-19 (1).xlsx 2014-01-19 17:30 - 2014-01-19 17:30 - 00007427 _____ () C:\Users\agusia\Downloads\nnnn-2014-January-19.xlsx 2014-01-19 14:44 - 2014-01-19 14:44 - 02347384 _____ (ESET) C:\Users\agusia\Downloads\esetsmartinstaller_plk.exe 2014-01-19 14:44 - 2014-01-19 14:44 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-01-19 08:33 - 2010-11-21 04:27 - 00270496 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2014-01-18 11:16 - 2014-01-18 11:16 - 00710899 _____ () C:\Users\agusia\Downloads\cstrike (6).rar 2014-01-17 21:32 - 2014-01-17 21:32 - 00000000 ____D () C:\Windows\SysWOW64\no 2014-01-17 21:32 - 2014-01-17 21:32 - 00000000 ____D () C:\Program Files (x86)\SRSRoot 2014-01-17 21:29 - 2014-01-17 21:28 - 07637848 _____ (123unlock ) C:\Users\agusia\Downloads\SRSRoot-Setup.exe 2014-01-17 21:12 - 2014-01-17 21:12 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneClickRoot 2014-01-17 21:11 - 2014-01-17 21:10 - 18123472 _____ (OneClickRoot) C:\Users\agusia\Downloads\OneClickRoot.exe 2014-01-17 18:53 - 2014-01-17 17:46 - 00000000 ____D () C:\Users\agusia\.android 2014-01-17 18:47 - 2014-01-17 18:45 - 11131512 _____ (OPDA Team ) C:\Users\agusia\Downloads\ZhuoDaShi-2.2.17-setup.exe 2014-01-17 18:24 - 2014-01-17 18:24 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SmartTweak Software 2014-01-17 18:24 - 2014-01-17 18:24 - 00000000 ____D () C:\Program Files (x86)\SmartTweak 2014-01-17 18:22 - 2014-01-17 18:22 - 00163344 _____ () C:\Users\agusia\Downloads\UnlockRoot_downloader_by_UnlockRoot.exe 2014-01-17 18:18 - 2014-01-17 18:18 - 00000000 ____D () C:\Users\agusia\Documents\Optimizer Pro 2014-01-17 18:18 - 2014-01-17 18:18 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Optimizer Pro 2014-01-17 18:12 - 2014-01-17 18:12 - 00003254 _____ () C:\Windows\System32\Tasks\SomotoUpdateCheckerAutoStart 2014-01-17 18:12 - 2014-01-17 18:12 - 00003056 _____ () C:\Windows\System32\Tasks\Show-Password Update 2014-01-17 18:12 - 2014-01-17 18:12 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker 2014-01-17 18:12 - 2014-01-17 18:12 - 00000000 ____D () C:\Users\agusia\AppData\Local\FilesFrog Update Checker 2014-01-17 18:12 - 2014-01-17 18:12 - 00000000 ____D () C:\Program Files (x86)\Show-Password 2014-01-17 18:11 - 2014-01-17 18:11 - 00163344 _____ () C:\Users\agusia\Downloads\UnlockRoot_downloader_by_UnlockRoot (1).exe 2014-01-17 18:10 - 2014-01-17 18:10 - 00166632 _____ () C:\Users\agusia\Downloads\Niepotwierdzony 754611.crdownload 2014-01-17 18:10 - 2014-01-17 18:10 - 00163344 _____ () C:\Users\agusia\Downloads\Niepotwierdzony 725576.crdownload 2014-01-17 17:44 - 2014-01-17 17:44 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_ssadadb_01005.Wdf 2014-01-17 17:36 - 2014-01-17 17:36 - 00000000 ____D () C:\ProgramData\Samsung 2014-01-17 17:36 - 2014-01-17 17:36 - 00000000 ____D () C:\Program Files\SAMSUNG 2014-01-17 17:34 - 2014-01-17 17:32 - 00000000 ____D () C:\Program Files (x86)\Kingo Android ROOT 2014-01-17 17:33 - 2014-01-17 17:33 - 00000000 ____D () C:\Users\agusia\Documents\wmshua 2014-01-17 17:33 - 2014-01-17 17:33 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\ZJMedia 2014-01-17 17:33 - 2014-01-17 17:33 - 00000000 ____D () C:\Users\agusia\AppData\Local\ZJMedia 2014-01-17 17:32 - 2014-01-17 17:32 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Lollipop 2014-01-17 17:32 - 2014-01-17 17:32 - 00000000 ____D () C:\Program Files (x86)\fst_pl_31 2014-01-17 17:31 - 2014-01-17 17:31 - 00227800 _____ () C:\Users\agusia\Downloads\KingoAndroidRoot_downloader-9XauH1U5.exe 2014-01-17 17:24 - 2014-01-17 17:24 - 00289508 _____ () C:\Users\agusia\Downloads\Game Killer v2.61.apk 2014-01-16 21:16 - 2014-01-16 21:16 - 04178604 _____ () C:\Users\agusia\Downloads\hltv-1401161512-de_kabul-1389881520-1389882960.zip 2014-01-16 21:15 - 2014-01-16 21:15 - 01135277 _____ () C:\Users\agusia\Downloads\cstrike (5).rar 2014-01-16 15:20 - 2014-01-16 15:20 - 03647203 _____ () C:\Users\agusia\Downloads\hltv-1401161331-de_dust4ever-1389875460-1389876960.zip 2014-01-16 09:43 - 2009-07-14 06:08 - 00032608 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-01-15 22:15 - 2014-01-15 22:14 - 08499404 _____ () C:\Users\agusia\Downloads\Najwięksi Zbrodniarze Wojenni - HITLER I STALIN 3.mp4 2014-01-15 22:03 - 2014-01-15 21:47 - 88977612 _____ () C:\Users\agusia\Downloads\Najwięksi Zbrodniarze Wojenni - Heinrich Himmler CAŁOŚĆ.mp4 2014-01-15 17:49 - 2014-01-15 17:49 - 00537791 _____ () C:\Users\agusia\Downloads\gsa.rar 2014-01-15 15:27 - 2014-01-15 15:27 - 00731017 _____ () C:\Users\agusia\Downloads\cstrike (4).rar 2014-01-15 14:55 - 2014-01-15 14:55 - 00731017 _____ () C:\Users\agusia\Downloads\cstrike (3).rar Some content of TEMP: ==================== C:\Users\agusia\AppData\Local\Temp\adb.exe C:\Users\agusia\AppData\Local\Temp\AdbWinApi.dll C:\Users\agusia\AppData\Local\Temp\AdbWinUsbApi.dll C:\Users\agusia\AppData\Local\Temp\appshat_generic.exe C:\Users\agusia\AppData\Local\Temp\AutoItX3.dll C:\Users\agusia\AppData\Local\Temp\bitool.dll C:\Users\agusia\AppData\Local\Temp\Creative Cloud Helper.exe C:\Users\agusia\AppData\Local\Temp\DeviceRooter.exe C:\Users\agusia\AppData\Local\Temp\DIFxAPI.dll C:\Users\agusia\AppData\Local\Temp\ews-setup.exe C:\Users\agusia\AppData\Local\Temp\Extract.exe C:\Users\agusia\AppData\Local\Temp\fp_pl_pfs_installer.exe C:\Users\agusia\AppData\Local\Temp\ggdrive-menu.exe C:\Users\agusia\AppData\Local\Temp\ggdrive-overlay.exe C:\Users\agusia\AppData\Local\Temp\GoogleSetup.exe C:\Users\agusia\AppData\Local\Temp\HPHelpUpdater.exe C:\Users\agusia\AppData\Local\Temp\installstats.exe C:\Users\agusia\AppData\Local\Temp\jre-7u13-windows-i586-iftw.exe C:\Users\agusia\AppData\Local\Temp\jre-7u17-windows-i586-iftw.exe C:\Users\agusia\AppData\Local\Temp\LiveSupport_setup.exe C:\Users\agusia\AppData\Local\Temp\Mobogenie_Setup_2.1.37_515.exe C:\Users\agusia\AppData\Local\Temp\OneClickRoot.exe C:\Users\agusia\AppData\Local\Temp\OptimizerPro.exe C:\Users\agusia\AppData\Local\Temp\Resource.exe C:\Users\agusia\AppData\Local\Temp\setup_fst_pl.exe C:\Users\agusia\AppData\Local\Temp\Show-Password_1030-8102.exe C:\Users\agusia\AppData\Local\Temp\sp58915.exe C:\Users\agusia\AppData\Local\Temp\SP59202.exe C:\Users\agusia\AppData\Local\Temp\sp64126.exe C:\Users\agusia\AppData\Local\Temp\SpeedUpMyComputer.exe C:\Users\agusia\AppData\Local\Temp\uninst.exe C:\Users\agusia\AppData\Local\Temp\UninstallHPSA.exe C:\Users\agusia\AppData\Local\Temp\unlockrootsetup.exe C:\Users\agusia\AppData\Local\Temp\UpdateCheckerSetup.exe C:\Users\agusia\AppData\Local\Temp\Updater.exe C:\Users\agusia\AppData\Local\Temp\vmark_setup.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-20 14:54 ==================== End Of Log ============================